[Git][security-tracker-team/security-tracker][master] Add CVE-2025-11261/mediawiki

Emilio Pozuelo Monfort (@pochu) pochu at debian.org
Fri Oct 31 08:30:03 GMT 2025



Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker


Commits:
009f2a8e by Emilio Pozuelo Monfort at 2025-10-31T09:28:09+01:00
Add CVE-2025-11261/mediawiki

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,7 @@
+CVE-2025-11261
+	- mediawiki 1:1.43.5+dfsg-1
+	NOTE: https://phabricator.wikimedia.org/T406322
+	NOTE: https://gerrit.wikimedia.org/r/c/mediawiki/core/+/1193414
 CVE-2025-8850 (In danny-avila/librechat version 0.7.9, there is an insecure API desig ...)
 	NOT-FOR-US: danny-avila/librechat
 CVE-2025-64118 (node-tar is a Tar for Node.js. In 7.5.1, using .t (aka .list) with { s ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/009f2a8ef296fa983f0897e7ffed8bc214a49fd6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/009f2a8ef296fa983f0897e7ffed8bc214a49fd6
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251031/1bbce6c1/attachment.htm>


More information about the debian-security-tracker-commits mailing list